Privacy Policy

Last updated: 13 April 2026

1. Introduction

DraggonnB (Pty) Ltd ("we", "us", or "our") operates Check My Lotto. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service. We comply with the Protection of Personal Information Act 4 of 2013 (POPIA) and other applicable South African data protection laws.

2. Information We Collect

Account Information

  • Email address (used for authentication and notifications)
  • Display name (optional)
  • Subscription tier and payment status

Ticket Data

  • Lottery ticket numbers you upload or enter
  • Ticket images (if uploaded via scan feature)
  • Game type and draw date selections

Usage Data

  • Pages visited and features used
  • Device type and browser information
  • IP address (for rate limiting and security only)

SMS Data

If you opt into our SMS ticket linking feature, we process bank SMS confirmations you submit to link ticket purchases. We extract only the transaction amount, date, and reference number. We do not store full SMS content or bank account details.

3. How We Use Your Information

  • To provide and maintain the Service
  • To check your tickets against official draw results
  • To send you win notifications, draw reminders, and account alerts
  • To process subscription payments via PayFast
  • To improve the Service through anonymised usage analytics
  • To prevent fraud and enforce our Terms of Service
  • To respond to support requests

4. AI Features

Our AI Chat and Smart Picker features use the Anthropic Claude API. When you use these features, your query and relevant context (such as draw history statistics) are sent to Anthropic's servers for processing. We do not send your personal information or ticket data to Anthropic. Anthropic's use of data is governed by their own privacy policy.

5. Data Sharing

We do not sell your personal information. We share data only with:

  • Supabase — database hosting and authentication
  • PayFast — payment processing (we do not store your card details)
  • SendGrid — transactional email delivery
  • Vercel — application hosting
  • Anthropic — AI features (anonymised queries only)

We may disclose information if required by South African law or a valid court order.

6. Data Security

We implement appropriate technical and organisational measures to protect your personal information, including:

  • Encryption in transit (TLS/HTTPS)
  • Row-Level Security (RLS) policies on our database
  • Secure authentication via Supabase Auth
  • Rate limiting to prevent abuse
  • Input sanitisation to prevent injection attacks

7. Data Retention

We retain your account data and ticket history for as long as your account is active. If you delete your account, we will remove your personal data within 30 days, except where we are required by law to retain it.

8. Your Rights Under POPIA

As a South African data subject, you have the right to:

  • Access your personal information we hold
  • Request correction of inaccurate information
  • Request deletion of your personal information
  • Object to the processing of your personal information
  • Withdraw consent for optional processing activities
  • Lodge a complaint with the Information Regulator

To exercise any of these rights, contact us at privacy@checkmylotto.online

9. Cookies

We use essential cookies for authentication and session management only. We do not use tracking cookies or third-party advertising cookies.

10. Children

The Service is not intended for anyone under 18 years of age. We do not knowingly collect personal information from children. If we learn that we have collected data from a child under 18, we will delete it promptly.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify registered users via email of any material changes. The "Last updated" date at the top indicates the most recent revision.

12. Information Officer

Our designated Information Officer can be contacted at: privacy@checkmylotto.online